Menu
Browse

Cyber Incident Victim: Brendon Gyermekruhz Kft.

Date:

Dec 2020

Location:

Hungary

Summary

A Hungarian baby clothing retailer experienced a ransomware attack involving Zeppelin-type malware that compromised its IT systems, bypassing firewall and antivirus protections. The breach caused temporary inaccessibility of user accounts and online shopping services, while attackers potentially acquired customer data. The company notified affected individuals via email about the incident and data exposure, though its public website announcement referenced only a resolved "technical error" and advised password resets for pre-incident registrations.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 1 motive 1 technique
Threat Actors Type Location
0 actors Available to members Available to members

Description

On December 19, 2020, Brendon Gyermekáruház Kft., a Hungarian retailer specializing in baby clothing, detected a cyberattack affecting its IT systems. The company confirmed through investigation that attackers deployed Zeppelin ransomware, which successfully bypassed both firewall protections and antivirus software. This intrusion caused immediate operational disruptions, rendering customer accounts inaccessible and halting online shopping functionality for an unspecified period. Attackers gained unauthorized access to user data stored within the compromised systems, though the specific types or volume of data were not disclosed in the notification. Brendon acknowledged the incident in an email sent to customers on an unspecified Wednesday following the attack discovery, confirming both the system compromise and potential acquisition of customer data by threat actors.

Cyber Incident Image

The company restored its webshop functionality after addressing the technical disruption, though its public website notification initially described the incident only as a resolved "technical error" without referencing the cyberattack. This contrasted with the direct disclosure in customer emails, which explicitly attributed the outage to malicious activity and warned of potential data exposure. Brendon instructed customers who registered accounts prior to December 19 to change their passwords before logging back into the system. No details were provided regarding ransom demands, payment, or data recovery processes. The incident caused reputational impact through customer exposure to potential data misuse and revealed inconsistencies between internal and external breach communications.

Sources
Sources available to members
1 source